What is claimed is: 



1 1 . A method for de-authenticating from a first web server security realm 

2 protected by an authentication scheme lacking a de-authentication operation, the 

3 method comprising: 

4 attempting to access a first resource in a first security realm protected by the 

5 authentication scheme; 

6 receiving a request for authentication credentials in response to said attempting 

7 to access the first resource; 

8 supplying said authentication credentials in response to the request so as to 
m become authenticated In the first security realm; and 

M accessing a logout resource In the first security realm, said logout resource 

ff configured to automatically authenticate with a second security realm on accessing 

il thereof. 

g 

m 2. The method of claim 1 , further comprising: 

^ providing a common access point executing a web browser; 

3 first displaying a login web page of the second security realm so that a first user 

4 may authenticate with the first security realm and access the first resource, the login 

5 page comprising a login resource configured to perform said attempting to access the 

6 first resource; and 

7 second displaying the login web page of the second security realm responsive to 

8 said accessing the logout resource so that a second user may authenticate with the first 

9 security realm and access the first resource. 
1 

12 



1 3. The method of claim 1 , wherein the logout resource executes a script 

2 configured to authenticate a user with the second security realm. 
1 

1 4. The method of claim 3, wherein the logout resource comprises a web 



2 page element comprising a link to the script, and wherein the web page element 

3 incorporates authentication credentials for the second security realm so that the user 

4 need not provide authentication credentials to access the second security realm. 
1 



I 5. The method of claim 1 , wherein the authentication scheme comprises 
gl HTTP basic authentication. 

1 

6. A method for de-authenticating from an HTTP basic authentication, 

M comprising: 

t3 attempting to access a first resource in a first security realm protected by HTTP 

Pi- basic authentication; 

C| responsive to said attempting to access, receiving an authentication request for 

6 controlling access to the first resource; 

7 supplying authentication credentials responsive to said authentication request so 

8 as to authenticate with the first security realm; 

9 accessing a second resource in the first security realm; and 

10 responsive to said accessing the second resource, automatically authenticating 

I I with a second security realm. 
1 
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1 7. The method of claim 6, wherein said authenticating with the second 

2 security realm invalidates a prior authentication with the first security realm. 
1 

1 8. The method of claim 7, further comprising: 

2 displaying a login element within a web browser, the login element configured to 

3 access the first resource upon activation thereof. 
1 

1 9. The method of claim 8, further comprising: 

2 displaying a logout element within the web browser for performing said 
O automatically authenticating with the second security realm; and 

within a single browser session: 

^ authenticating a first user with the first security realm; 

^'1 authenticating the first user with the second security realm so as to de- 

^ authenticate the first user from the first security realm; and 

fi authenticating a second user with the first security realm, 
q 

1 1 0. An article of manufacture for de-authenticating from a first web server 



2 security realm protected by an authentication scheme lacking a de-authentication 

3 operation, comprising a readable medium having instructions encoded thereon for 

4 execution by a processor, said instructions capable of directing the processor to 

5 perform: 

6 attempting to access a first resource in a first security realm protected by the 

7 authentication scheme; 



14 



8 receiving a request for authentication credentials in response to said attempting 

9 to access the first resource; 

10 supplying said authentication credentials in response to the request so as to 

1 1 beconne authenticated in the first security realm; and 

12 accessing a logout resource in the first security realm, said logout resource 

13 configured to automatically authenticate with a second security realm on accessing 

14 thereof. 
1 

1 11. The article of manufacture of claim 1 0, said instructions comprising further 

ill instructions capable of directing the processor to perform: 
§ providing a common access point executing a web browser; 

^ first displaying a login web page of the second security realm so that a first user 

% may authenticate with the first security realm and access the first resource, the login 

g page comprising a login resource configured to perform said attempting to access the 
first resource; and 

CI second displaying the login web page of the second security realm responsive to 

9 said accessing the logout resource so that a second user may authenticate with the first 

10 security realm and access the first resource. 
1 

1 1 2. The article of manufacture of claim 1 0, wherein said instructions for said 

2 logout resource comprise instructions capable of directing the processor to execute a 

3 script configured to authenticate a user with the second security realm. 
4 

5 1 3. The article of manufacture of claim 1 2, further comprising: 
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6 said instructions for said logout resource further comprising instructions capable 

7 of directing the processor to provide a web page element comprising a link to the script; 

8 and 

9 said instructions for said web page element further comprising instructions 



1 0 capable of directing the processor to provide authentication credentials for the second 

1 1 security realm so that the user need not provide authentication credentials to access the 

12 second security realm. 
1 



I 14. The article of manufacture of claim 10, wherein the authentication scheme 
& comprises HTTP basic authentication, 

i 

15. An article of manufacture for de-authenticating from an HTTP basic 

M authentication comprising a readable medium having instructions encoded thereon for 

execution by a processor, said Instructions capable of directing the processor to 

11- perform: 

CI attempting to access a first resource in a first security realm protected by HTTP 

6 basic authentication; 

7 responsive to said attempting to access, receiving an authentication request for 

8 controlling access to the first resource; 

9 supplying authentication credentials responsive to said authentication request so 
10 as to authenticate with the first security realm; 

I I accessing a second resource in the first security realm; and 



16 



12 responsive to said accessing the second resource, automatically authenticating 

13 with a second security realm. 
1 

1 16. The article of manufacture of claim 15, wherein said instructions for 

2 authenticating with the second security realm invalidates a prior authentication with the 

3 first security realm. 
1 

1 1 7. The article of manufacture of claim 1 6, said instructions comprising further 

2 instructions capable of directing the processor to perform: 

ft displaying a login element within a web browser, the login element configured to 

a access the first resource upon activation thereof. 

;H 18. The article of manufacture of claim 17, said instructions comprising further 

J§ instructions capable of directing the processor to perform: 

fi displaying a logout element within the web browser for performing said 

g automatically authenticating with the second security realm; and 

5 within a single browser session: 

6 authenticating a first user with the first security realm; 

7 authenticating the first user with the second security realm so as to de- 

8 authenticate the first user from the first security realm; and 

9 authenticating a second user with the first security realm. 
1 
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1 1 9. An apparatus for de-authenticating from a first web server security realm 

2 protected by an authentication scheme lacking a de-authentication operation, 

3 comprising: 

4 means for attempting to access a first resource in a first security realm protected 

5 by the authentication scheme; 

6 means for receiving a request for authentication credentials in response to said 

7 attempting to access the first resource; 

8 means for supplying said authentication credentials in response to the request so 

9 as to become authenticated in the first security realm; and 

means for accessing a logout resource in the first security realm, said logout 

W resource configured to automatically authenticate with a second security realm on 

M accessing thereof. 

S . :: 

1 

f4 20. The apparatus of claim 10, further comprising: 

ff means for providing a common access point executing a web browser; 

£3 means for first displaying a login web page of the second security realm so that a 

4 first user may authenticate with the first security realm and access the first resource, the 

5 login page comprising a login resource configured to perform said attempting to access 

6 the first resource; and 

7 means for second displaying the login web page of the second security realm 

8 responsive to said accessing the logout resource so that a second user may 

9 authenticate with the first security realm and access the first resource. 
1 
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1 21 . An apparatus for de-authenticating from an HTTP basic authentication 

2 comprising: 

3 means for attempting to access a first resource in a first security realm protected 

4 by HTTP basic authentication; 

5 responsive to said attempting to access, means for receiving an authentication 

6 request for controlling access to the first resource; 

7 means for supplying authentication credentials responsive to said authentication 

8 request so as to authenticate with the first security realm; 

9 means for accessing a second resource in the first security realm; and 
responsive to said accessing the second resource, means for automatically 

11 authenticating with a second security realm. 

y 

;| 22. The apparatus of claim 21 , further comprising: 

r€ means for displaying a logout element within the web browser for performing said 

ri! automatically authenticating with the second security realm; and 

O within a single browser session: 

5 means for authenticating a first user with the first security realm; 

6 means for authenticating the first user with the second security realm so 

7 as to de-authenticate the first user from the first security realm; and 

8 means for authenticating a second user with the first security realm. 
1 

1 
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